Backup Process:
IMPORTANT: A backup of EventLog Analyzer should not be taken when the instance is running. |
Stop the ManageEngine EventLog Analyzer service.
Open a command prompt with admin privileges.
Navigate to <dir>:\ManageEngine\EventLog Analyzer\bin.
Execute the following commands to ensure that the instance is completely shut down:
shutdown.bat
stopDB.bat
stopSEC.bat
In the same cmd window, navigate to <dir>:\ManageEngine\EventLog Analyzer\ES\bin or <dir>:\ManageEngine\elasticsearch\ES\bin.
Execute the following command to ensure that the Elasticsearch engine is stopped.
StopES.bat
Open Task Manager ⇾ Details tab and ensure that the wrapper.exe, SysEvtCol.exe, postgres.exe, and java.exe processes are not running from EventLog Analyzer installation directory path. If they are running, end the task manually.
Take a copy of the entire ManageEngine\EventLog Analyzer as well as ManageEngine\Elasticsearch directory or take a snapshot of the Virtual Machine.
Now that the backup is complete, start the ManageEngine EventLog Analyzer service.
Then, go to the <dir>:\ManageEngine\EventLog Analyzer\logs folder ⇾ open wrapper.log file ⇾ go to the end of the document ⇾ check for the line "Connect to: [http://localhost:8400]". This ensures that all the modules are started and the instance is up and running.
Note: Full backup (periodical) of the EventLog Analyzer server is always recommended, in case of product disaster recovery. |
Copy the backed up folder to the original location.
Open a command prompt with administrator privilege.
Navigate to <dir>:\ManageEngine\EventLog Analyzer\bin.
Execute initpgsql.bat.
Make sure the service is installed, if it is a new path.
Start the ManageEngine EventLog Analyzer service.
Or else, you can simply restore the VM Snapshot and start the ManageEngine EventLog Analyzer service.